Zero Day Docket
  • Home
  • Breach Autopsy
  • Exhibit A(I)
  • Explain This
  • Policy Roast
  • The Docket
Sign in Subscribe

identity-theft

Breach Autopsy: 23andMe Turns Credential Stuffing Into Genetic Data Governance

Breach Autopsy: 23andMe Turns Credential Stuffing Into Genetic Data Governance

The 23andMe settlement turns credential stuffing into a governance test for genetic-data platforms.
Karla Ortiz-Flores 21 Jul 2026
The Docket: Gitea Docker Turned Proxy Trust Into Identity Bypass

The Docket: Gitea Docker Turned Proxy Trust Into Identity Bypass

Gitea's Docker image shows why identity headers need a verified trust boundary, not just a reverse proxy in front.
Karla Ortiz-Flores 12 Jul 2026
Explain This: Device Code Phishing Attacks and OAuth Abuse

Explain This: Device Code Phishing Attacks and OAuth Abuse

Device code phishing surged 37x as attackers exploit OAuth's TV login flow to steal credentials without triggering MFA alerts.
Karla Ortiz-Flores 04 Apr 2026
The Docket: Okta Builds AI Agent Identity Management Before Someone Gets Sued

The Docket: Okta Builds AI Agent Identity Management Before Someone Gets Sued

Okta just announced a framework for managing AI agent identities. Translation: companies are deploying agents without knowing who has access to what.
Karla Ortiz-Flores 16 Mar 2026

Subscribe to Zero Day Docket

Don't miss out on the latest news. Sign up now to get access to the library of members-only articles.
  • Get briefed
  • LinkedIn
  • Medium
Zero Day Docket © 2026. Powered by Ghost